Lead DevSecOps / Azure Architect

ATS Client

Johannesburg

On-site

ZAR 1,100,000 - 1,900,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

ATS Client is seeking a highly skilled DevSecOps / Azure Architect to lead secure cloud-native design on Microsoft Azure, driving secure DevOps practices, automation, and API platform modernization.

The role focuses on architecting secure, resilient Azure solutions, overseeing migrations, and integrating governance and security into CI/CD, monitoring, and compliance across enterprise environments.

Qualifications

  • Proven expertise designing secure Azure architectures.
  • Hands-on experience implementing DevSecOps across CI/CD pipelines.
  • Strong knowledge of API management and cloud security controls.

Responsibilities

  • Design secure, scalable Azure architectures with high availability.
  • Lead migration of on-prem/legacy platforms to Azure.
  • Architect solutions using Azure APIM, App Services, Functions, AKS, Service Bus.
  • Define landing zones, governance models, and disaster recovery strategies.
  • Implement secure release management and environment promotion strategies.
  • Integrate security controls into build and deployment workflows.
  • Automate infrastructure with Bicep/ARM/Terraform; embed security scanning.

Skills

Azure Architecture
DevSecOps
CI/CD
Infrastructure as Code
Security by design
Azure APIM
Azure AD Entra ID
AKS
Cloud security
Monitoring

Tools

Azure DevOps
GitHub Actions
Terraform
Bicep
ARM Templates
SAST/DAST tools
Key Vault

Job description

Job Description We are seeking a highly skilled DevSecOps / Azure Architect to lead the design, implementation, and governance of secure cloud-native architectures on Microsoft Azure. The role will be instrumental in driving secure DevOps practices, infrastructure automation, and enterprise-grade API platform modernization (including Azure API Management).

The ideal candidate will combine deep Azure architecture expertise with strong DevSecOps practices, ensuring scalability, resilience, and security by design.

Key Responsibilities
Azure Architecture & Cloud Design
  • Design secure, scalable, and high-availability Azure architectures.
  • Lead cloud migration initiatives (on-prem / legacy platform → Azure).
  • Architect solutions using Azure APIM, App Services, Functions, AKS, Service Bus, and related services.
  • Implement multi-region and disaster recovery strategies.
  • Define landing zones and governance models aligned with enterprise standards.
DevSecOps Implementation
  • Implement DevSecOps practices across CI/CD pipelines.
  • Integrate security controls into build and deployment workflows.
  • Automate infrastructure using Infrastructure as Code (Bicep / ARM / Terraform).
  • Embed security scanning tools (SAST, DAST, container scanning, dependency checks).
  • Implement secure release management and environment promotion strategies.
Security Architecture & Compliance
  • Design zero-trust architecture patterns.
  • Implement secure API gateway configurations (Azure APIM policies).
  • Configure OAuth2, OpenID Connect, Azure AD (Entra ID).
  • Ensure compliance with OWASP API Security Top 10.
  • Manage certificate lifecycle, mTLS, and key vault integration.
  • Define cloud security posture management practices.
Automation & CI/CD
  • Architect CI/CD pipelines using Azure DevOps or GitHub Actions.
  • Implement blue-green / canary deployment strategies.
  • Enable automated policy validation for APIs.
  • Design pipeline governance and approval gates.
Monitoring & Observability
  • Implement Azure Monitor, Log Analytics, Application Insights, ELK, Prometheus and Grafana.
  • Define logging, tracing, and alerting strategies.
  • Enable proactive anomaly detection and SLA monitoring.
Technical Skills - Mandatory
Azure Expertise
  • Azure APIM (architecture & policy configuration)
  • Azure AD / Entra ID
  • Azure App Services / Functions
  • AKS (preferred)
  • Azure Key Vault
  • Azure Networking (VNet, NSG, Private Endpoints)
Security & DevSecOps
  • DevSecOps implementation experience
  • CI/CD pipeline security
  • SAST/DAST tools integration
  • Identity & access management
  • Secure coding practices
  • API security frameworks
Automation
  • Azure DevOps / GitHub Actions
  • Infrastructure as Code (Bicep / ARM / Terraform)
  • YAML pipelines
  • Containerization (Docker, Kubernetes preferred)
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Lead DevSecOps / Azure Architect
Lead DevSecOps / Azure Architect

Blue Pearl PTY • Johannesburg

On-site
ZAR 800,000 - 1,200,000
DevSecOps / Azure Architect
DevSecOps / Azure Architect

Blue Pearl HQ • Johannesburg

On-site
ZAR 2,000,000 - 3,500,000
DevSecOps / Azure Architect
DevSecOps / Azure Architect

ATS Client • Johannesburg

On-site
ZAR 1,000,000 - 1,800,000
DevSecOps / Azure Architect
DevSecOps / Azure Architect

Blue Pearl PTY • Johannesburg

On-site
ZAR 900,000 - 1,200,000
Lead DevSecOps / Azure Architect
Lead DevSecOps / Azure Architect

Blue Pearl HQ • Johannesburg

On-site
ZAR 900,000 - 1,350,000
Azure DevSecOps Architect: Secure Cloud & API Modernization
Azure DevSecOps Architect: Secure Cloud & API Modernization

ATS Client • Johannesburg

On-site
ZAR 1,100,000 - 1,900,000
Enterprise Azure Architect
Enterprise Azure Architect

ATS Client • Johannesburg

On-site
ZAR 1,200,000 - 1,800,000
Enterprise Azure Architect
Enterprise Azure Architect

Blue Pearl HQ • Johannesburg

On-site
ZAR 900,000 - 1,300,000
Azure DevSecOps Architect | API Management Lead
Azure DevSecOps Architect | API Management Lead

Blue Pearl PTY • Johannesburg

On-site
ZAR 900,000 - 1,200,000
Azure DevSecOps Architect: Secure Cloud Platform Lead
Azure DevSecOps Architect: Secure Cloud Platform Lead

Blue Pearl HQ • Johannesburg

On-site
ZAR 900,000 - 1,350,000